Smart Working

Infrastructure Security Engineer (Cloud), (Remote, Full-Time)

Smart Working • IN
Python Hybrid/Remote
About Smart Working

At Smart Working, we believe your job should not only look right on paper but also feel right every day. This isn’t just another remote opportunity - it’s about finding where you truly belong, no matter where you are. From day one, you’re welcomed into a genuine community that values your growth and well-being.

Our mission is simple: to break down geographic barriers and connect skilled professionals with outstanding global teams and products for full-time, long-term roles. We help you discover meaningful work with teams that invest in your success, where you’re empowered to grow personally and professionally.
Join one of the highest-rated workplaces on Glassdoor and experience what it means to thrive in a truly remote-first world. 
 
About the Role

We’re looking for an experienced Infrastructure Security Engineer (Cloud) to design, implement, and manage secure, compliant architectures across both cloud and on-premises environments.
You’ll play a key role in building secure-by-design infrastructure, automating security operations, and ensuring the organization's cloud platforms remain protected against emerging threats.
This role combines hands-on technical expertise with a strong understanding of security governance, automation, and compliance; perfect for an engineer who thrives on improving security posture across hybrid systems.

Responsibilities

  • Secure Architecture Design – Design, build, and maintain secure cloud and hybrid infrastructure environments, selecting appropriate services, configurations, and security controls (firewalls, encryption, IAM).
  • Monitoring & Incident Response – Continuously monitor systems for security threats, vulnerabilities, and indicators of compromise. Lead or support investigation and remediation of incidents, including breaches.
  • Policy & Compliance – Develop, document, and enforce cloud security policies, standards, and best practices to align with regulatory frameworks and compliance requirements.
  • Automation & Tooling – Use scripting and Infrastructure-as-Code (IaC) to automate security tasks and deploy cloud-native security tools for continuous protection and validation.
  • Collaboration – Partner closely with infrastructure, DevOps, and development teams to identify and mitigate risks early in the delivery lifecycle.
  • Risk Assessment & Testing – Perform ongoing vulnerability assessments, penetration testing, and risk analysis to detect and remediate weaknesses.
  • Continuous Improvement – Stay ahead of evolving threats, recommend tool and process improvements, and support a proactive, security-first culture.
  • Requirements

  • 5+ years of professional experience in cloud, infrastructure, or cybersecurity engineering roles.
  • Proven expertise in designing and implementing secure architectures across AWS, Azure, or GCP environments.
  • Strong understanding of networking, IAM, encryption, and firewall configuration in multi-cloud setups.
  • Proficiency in scripting languages such as Python or Bash for automation and orchestration.
  • Hands-on experience with Infrastructure-as-Code (IaC) tools (e.g., Terraform, CloudFormation, or Bicep).
  • Deep knowledge of cloud-native security tools and monitoring platforms (e.g., AWS Security Hub, Azure Defender, Sentinel).
  • Familiarity with vulnerability assessment, penetration testing, and security monitoring frameworks.
  • Strong grasp of security principles, threat modelling, and adversary TTPs (Tactics, Techniques, and Procedures).
  • Excellent problem-solving, communication, and collaboration skills, with the ability to partner effectively across technical teams.
  • Bachelor’s degree in Computer Science, Information Security, or a related field, or equivalent experience.
  • Nice to Have

  • Certifications such as AWS Certified Security – Specialty, CCSP, CISSP, or Azure Security Engineer Associate.
  • Experience working in regulated industries or environments governed by standards such as ISO 27001, SOC 2, or GDPR.
  • Familiarity with SIEM systems, threat intelligence tools, or SOAR platforms.
  • Exposure to DevSecOps practices and integration of security in CI/CD pipelines.
  • Benefits

  • Fixed Shifts: 12:00 PM - 9:30 PM IST (Summer) | 1:00 PM - 10:30 PM IST (Winter)
  • No Weekend Work: Real work-life balance, not just words
  • Day 1 Benefits: Laptop and full medical insurance provided
  • Support That Matters: Mentorship, community, and forums where ideas are shared
  • True Belonging: A long-term career where your contributions are valued